Cyber Security Grc Specialist

4 days ago


Melbourne, Victoria, Australia Bluescope Full time

**Job Description**:
The Global Cyber Security GRC Specialist is an integral part of our global security team and plays a critical part in BlueScope's purpose: To create and inspire smart solutions in steel, to strengthen our communities for the future.

You will support cyber security governance, risk, compliance and assurance capabilities across the global footprint. This role will contribute to the establishment and management of a well-structured GRC capability that will uplift and maintain BlueScope's maturity to proactively safeguard the organisation from cyber related threats. The role reports to the Global Head of Security GRC and Architecture.

**What you will do**

You will contribute to BlueScope's GRC function to ensure cyber risks are effectively and proactively managed within agreed risk tolerances in compliance with appropriate frameworks, policies, standards and best practices.
- Develop, maintain and review security governance documentation including frameworks, policies, standards, procedures and guidelines
- Provide guidance to ensure compliance with information security policies and standards
- Identify and manage security risks and liaise with key stakeholders to support them in maintaining risk and compliance protocols and progress risk treatment plans
- Contribute to roadmap and strategy development and product selection
- Ensure security controls are implemented in alignment with BlueScope's cyber security policies and standards
- Establish key GRC processes and implement supporting tools
- Manage third party risk management tools, processes and reporting
- Manage regular governance, risk and compliance information security reporting
- Build strong relationships with internal and external stakeholders to maintain and improve service to business users and enhance knowledge and information sharing.

You will work and develop meaningful relationships with global leaders, cross-functional teams, service providers and vendors. Utilising your strong process knowledge, you'll manage key governance and assurance processes to ensure that BlueScope both attains and maintains the agreed levels of maturity. This includes conducting security reviews, risk reviews, compliance and maturity assessments and ensure that metrics are collated and reported at both the operational and senior executive levels.

**What are we looking for?**

We're expecting you to be a highly collaborative and influential communicator, who can build trust and meaningful relationships across the organisation. You will demonstrate a forward-thinking approach, with the ability to develop, manage and continually improve GRC processes and capabilities to protect BlueScope's global security environment.

We're seeking a professional with demonstrated experience in a combination of information security risk management, compliance, governance and assurance, with experience in managing and establishing a GRC capability supported by industry standard tools and processes.

You will have a proven track record in all aspects of Cyber GRC, with a strong focus on establishing and managing processes and supporting tools, including the ability to collate and report on key metrics and other measures to clearly articulate risks and compliance.

Experience with common frameworks such as NIST and ISO is mandatory, in addition to experience developing key processes and setting up and managing supporting GRC tools and third party vendor management.

Location is **Wollongong, Sydney or Melbourne.



  • Melbourne, Victoria, Australia Snowy Hydro Full time

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: Snowy Hydro is a dynamic, integrated energy business that has been providing on-demand, reliable energy to Australia for generations.Snowy Hydro owns and operates a powerful combination of generation assets, including the mighty Snowy Mountains Scheme, gas and diesel...


  • Melbourne, Victoria, Australia beBeeCompliance Full time $80,000 - $120,000

    Protect Arup's digital assets and data from cyber threats as a specialist within our global cybersecurity team. We are seeking an experienced GRC Cyber Analyst to join our growing security operations, helping us assess risks, define policies, manage supply chain vulnerabilities, prevent data loss, and ensure compliance with relevant laws and regulations.The...


  • Melbourne, Victoria, Australia beBeeCybersecurity Full time $160,000 - $190,000

    Cyber Security GRC Manager RoleWe are seeking an experienced Cyber Security Governance, Risk Management and Compliance (GRC) professional to lead our security strategy. As the head of Cyber Security GRC, you will be responsible for shaping the governance frameworks, leading risk assessments and ensuring compliance across the business.This includes developing...


  • Melbourne, Victoria, Australia More Full time $80,000 - $120,000 per year

    The CompanyMore ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia More Telecom Full time $80,000 - $120,000 per year

    THE COMPANY:More ) and Tangerine ) are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses right across Australia. We're rapidly expanding and on the lookout for a Cyber Security GRC Associate.As the Cyber Security GRC Associate at More Telecom and Tangerine...


  • Melbourne, Victoria, Australia Aurec Full time $104,000 - $130,878 per year

    Cyber Security GRC Consultant6 month contractMelbourne CBDHybridCritical role responsible for driving key cybersecurity initiatives and supporting strategic decision making. You will be a key contributor to the organisation's cyber resilience, working to uplift security maturity, develop critical documentation, and shape future policy. This is a unique...


  • Melbourne, Victoria, Australia Intellihub Full time $90,000 - $120,000 per year

    Company DescriptionIntellihub is committed to simplifying the energy transition – as a leader in smart metering across ANZ and innovator of solar, battery, EV, virtual power plant and home electrification solutions.With strong leadership supporting you, a career at Intellihub is defined by flexibility, growth and a deeply fulfilling experience. We're...


  • Melbourne, Victoria, Australia Intellihub Group Full time $90,000 - $120,000 per year

    Company DescriptionIntellihub is committed to simplifying the energy transition – as a leader in smart metering across ANZ and innovator of solar, battery, EV, virtual power plant and home electrification solutions.With strong leadership supporting you, a career at Intellihub is defined by flexibility, growth and a deeply fulfilling experience. We're...


  • Melbourne, Victoria, Australia More Full time

    OverviewMore and Tangerine are two fast-growing challenger brands in the telecommunications space, offering nbn, mobile and fixed voice products to consumers and small businesses across Australia.We're rapidly expanding and are looking for a Cyber Security GRC Associate in Melbourne.This junior role is ideal for recent graduates or professionals with 1–2...

  • Grc Cyber Analyst

    2 days ago


    Melbourne, Victoria, Australia Arup Full time

    **Joining Arup**Arup's purpose, shared values and collaborative approach has set us apart for over 75 years, guiding how we shape a better world.As a governance, risk and compliance (GRC) cyber analyst for our growing global cyber securityteam you will help protect Arup's digital infrastructure and data from cyber-attack. You will help toassess Arup's...